Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2023-20588

Опубликовано: 12 дек. 2023
Источник: msrc
EPSS Низкий

Описание

AMD: CVE-2023-20588 AMD Speculative Leaks Security Notice

FAQ

Why is this AMD CVE included in the Security Update Guide?

The vulnerability assigned to this CVE is in certain processor models offered by AMD. The mitigation for this vulnerability requires a Windows update. This CVE is being documented in the Security Update Guide to announce that the latest builds of Windows enable the mitigation and provide protection against the vulnerability.

Please see the following for more information:

Обновления

ПродуктСтатьяОбновление
Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
Windows Server 2012
Windows Server 2012 (Server Core installation)
Windows Server 2012 R2
Windows Server 2012 R2 (Server Core installation)

Показывать по

Возможность эксплуатации

Publicly Disclosed

Yes

Exploited

No

Latest Software Release

Exploitation Less Likely

DOS

N/A

EPSS

Процентиль: 88%
0.03997
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 2 года назад

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.

CVSS3: 6
redhat
почти 2 года назад

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality. 

CVSS3: 5.5
nvd
почти 2 года назад

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality. 

CVSS3: 5.5
debian
почти 2 года назад

A division-by-zero error on some AMD processors can potentially return ...

CVSS3: 7.5
github
почти 2 года назад

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality. 

EPSS

Процентиль: 88%
0.03997
Низкий